GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,241 advisories
Filter by severity
A pre-auth SQL injection vulnerability in the email protection feature of Sophos Firewall...
Critical
Unreviewed
CVE-2024-12727
was published
Dec 19, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-10244
was published
Dec 19, 2024
A vulnerability has been found in the 1000projects Bookstore Management System PHP MySQL Project...
Critical
Unreviewed
CVE-2024-55496
was published
Dec 17, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-8972
was published
Dec 17, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54280
was published
Dec 16, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-55976
was published
Dec 16, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-55988
was published
Dec 16, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-55980
was published
Dec 16, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-55978
was published
Dec 16, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-55972
was published
Dec 16, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-55977
was published
Dec 16, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-55981
was published
Dec 16, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-55982
was published
Dec 16, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54361
was published
Dec 16, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54292
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54234
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54261
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-52057
was published
Dec 13, 2024
A SQL injection vulnerability in /index.php in PHPGurukul Park Ticketing Management System v1.0...
Critical
Unreviewed
CVE-2024-54811
was published
Dec 12, 2024
A SQL Injection vulnerability was found in /admin/index.php in phpgurukul Online Nurse Hiring...
Critical
Unreviewed
CVE-2024-55099
was published
Dec 12, 2024
A SQL Injection vulnerability was found in /preschool/admin/password-recovery.php in PHPGurukul...
Critical
Unreviewed
CVE-2024-54810
was published
Dec 12, 2024
A SQL injection vulnerability was found in phpgurukul Online Nurse Hiring System v1.0 in /admin...
Critical
Unreviewed
CVE-2024-54842
was published
Dec 12, 2024
Phpgurukul's Beauty Parlour Management System v1.1 is vulnerable to SQL Injection in `login.php`...
Critical
Unreviewed
CVE-2024-53480
was published
Dec 10, 2024
SQL injection in the admin web console of Ivanti CSA before version 5.0.3 allows a remote...
Critical
Unreviewed
CVE-2024-11773
was published
Dec 10, 2024
A SQL Injection was found in /remove_sent_message.php in kashipara E-learning Management System...
Critical
Unreviewed
CVE-2024-54925
was published
Dec 9, 2024
ProTip!
Advisories are also available from the
GraphQL API